acmesh-official / acme.sh

A pure Unix shell script implementing ACME client protocol
https://acme.sh
GNU General Public License v3.0
39.44k stars 4.98k forks source link

Register account error #3684

Open CesMak opened 3 years ago

CesMak commented 3 years ago

I tried to use a ssl termination for my synology disk station version 5. I followed the instructions at: https://synology.wordpress.com/2018/03/17/installing-a-free-letsencrypt-ssl-certificate-on-dsm-5-x/

However I got this error when doing: > acme.sh --register-account -m 2f4yor@gmail.com --server zerossl --debug 2

Markus> acme.sh  --register-account  -m 2f4yor@gmail.com --server zerossl
Markus>  acme.sh --issue -d your.domain.name --webroot /var/lib/letsencrypt --certpath /usr/syno/etc/ssl/ssl.crt/server.crt --keypath /usr/syno/e
tc/ssl/ssl.key/server.key --capath /usr/syno/etc/ssl/ssl.intercrt/server-ca.crt --reloadcmd '/usr/syno/sbin/synoservicecfg --reload httpd-sys'

[Sun Aug 29 17:23:58 CEST 2021] Using CA: https://acme.zerossl.com/v2/DV90
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:23:58 CEST 2021] Registering account: https://acme.zerossl.com/v2/DV90
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:24:00 CEST 2021] Register account Error: {"type":"urn:ietf:params:acme:error:malformed","status":400,"detail":"[External Account Binding] Invalid MAC on JWS request"}
[Sun Aug 29 17:24:00 CEST 2021] Please check log file for more details: /volume1/.acme.sh/acme.sh.log
Markus> 
Markus> 
Markus> 
Markus> acme.sh  --register-account  -m 2f4yor@gmail.com --server zerossl
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:24:33 CEST 2021] Registering account: https://acme.zerossl.com/v2/DV90
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:24:35 CEST 2021] Register account Error: {"type":"urn:ietf:params:acme:error:malformed","status":400,"detail":"[External Account Binding] Invalid MAC on JWS request"}
Markus> acme.sh  --register-account  -m 2f4yor@gmail.com --server zerossl --debug 2
[Sun Aug 29 17:25:05 CEST 2021] _selectServer try snames='zerossl.com,zerossl'
[Sun Aug 29 17:25:06 CEST 2021] _selectServer match zerossl
[Sun Aug 29 17:25:06 CEST 2021] Selected server: https://acme.zerossl.com/v2/DV90
[Sun Aug 29 17:25:06 CEST 2021] Lets find script dir.
[Sun Aug 29 17:25:06 CEST 2021] _SCRIPT_='/volume1/.acme.sh/acme.sh'
[Sun Aug 29 17:25:06 CEST 2021] _script='/volume1/.acme.sh/acme.sh'
[Sun Aug 29 17:25:06 CEST 2021] _script_home='/volume1/.acme.sh'
[Sun Aug 29 17:25:06 CEST 2021] Using config home:/volume1/.acme.sh
[Sun Aug 29 17:25:06 CEST 2021] LE_WORKING_DIR='/volume1/.acme.sh'
https://github.com/acmesh-official/acme.sh
v3.0.1
[Sun Aug 29 17:25:06 CEST 2021] Using server: zerossl
[Sun Aug 29 17:25:06 CEST 2021] Running cmd: registeraccount
[Sun Aug 29 17:25:06 CEST 2021] Using config home:/volume1/.acme.sh
[Sun Aug 29 17:25:06 CEST 2021] ACME_DIRECTORY='https://acme.zerossl.com/v2/DV90'
[Sun Aug 29 17:25:06 CEST 2021] _ACME_SERVER_HOST='acme.zerossl.com'
[Sun Aug 29 17:25:06 CEST 2021] _ACME_SERVER_PATH='v2/DV90'
[Sun Aug 29 17:25:06 CEST 2021] Using config home:/volume1/.acme.sh
[Sun Aug 29 17:25:06 CEST 2021] ACME_DIRECTORY='https://acme.zerossl.com/v2/DV90'
[Sun Aug 29 17:25:06 CEST 2021] _ACME_SERVER_HOST='acme.zerossl.com'
[Sun Aug 29 17:25:06 CEST 2021] _ACME_SERVER_PATH='v2/DV90'
[Sun Aug 29 17:25:06 CEST 2021] _init api for server: https://acme.zerossl.com/v2/DV90
[Sun Aug 29 17:25:06 CEST 2021] Retrying GET
[Sun Aug 29 17:25:06 CEST 2021] GET
[Sun Aug 29 17:25:06 CEST 2021] url='https://acme.zerossl.com/v2/DV90'
[Sun Aug 29 17:25:06 CEST 2021] timeout=
[Sun Aug 29 17:25:06 CEST 2021] displayError='1'
[Sun Aug 29 17:25:06 CEST 2021] _CURL='curl --silent --dump-header /volume1/.acme.sh/http.header  -L  --trace-ascii /tmp/acme.shwefADf24sf.1630250706.tmp  -g '
[Sun Aug 29 17:25:06 CEST 2021] ret='0'
[Sun Aug 29 17:25:06 CEST 2021] _hcode='0'
[Sun Aug 29 17:25:06 CEST 2021] response='{
  "newNonce": "https://acme.zerossl.com/v2/DV90/newNonce",
  "newAccount": "https://acme.zerossl.com/v2/DV90/newAccount",
  "newOrder": "https://acme.zerossl.com/v2/DV90/newOrder",
  "revokeCert": "https://acme.zerossl.com/v2/DV90/revokeCert",
  "keyChange": "https://acme.zerossl.com/v2/DV90/keyChange",
  "meta": {
    "termsOfService": "https://secure.trust-provider.com/repository/docs/Legacy/20201020_Certificate_Subscriber_Agreement_v_2_4_click.pdf",
    "website": "https://zerossl.com",
    "caaIdentities": ["sectigo.com", "trust-provider.com", "usertrust.com", "comodoca.com", "comodo.com"],
    "externalAccountRequired": true
  }
}'
[Sun Aug 29 17:25:06 CEST 2021] ACME_KEY_CHANGE='https://acme.zerossl.com/v2/DV90/keyChange'
[Sun Aug 29 17:25:06 CEST 2021] ACME_NEW_AUTHZ
[Sun Aug 29 17:25:06 CEST 2021] ACME_NEW_ORDER='https://acme.zerossl.com/v2/DV90/newOrder'
[Sun Aug 29 17:25:06 CEST 2021] ACME_NEW_ACCOUNT='https://acme.zerossl.com/v2/DV90/newAccount'
[Sun Aug 29 17:25:06 CEST 2021] ACME_REVOKE_CERT='https://acme.zerossl.com/v2/DV90/revokeCert'
[Sun Aug 29 17:25:06 CEST 2021] ACME_AGREEMENT='https://secure.trust-provider.com/repository/docs/Legacy/20201020_Certificate_Subscriber_Agreement_v_2_4_click.pdf'
[Sun Aug 29 17:25:06 CEST 2021] ACME_NEW_NONCE='https://acme.zerossl.com/v2/DV90/newNonce'
[Sun Aug 29 17:25:06 CEST 2021] RSA key
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:25:06 CEST 2021] _URGLY_PRINTF
[Sun Aug 29 17:25:06 CEST 2021] xargs
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:25:06 CEST 2021] _URGLY_PRINTF
[Sun Aug 29 17:25:06 CEST 2021] xargs
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:25:06 CEST 2021] Using _ascii_hex
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:25:07 CEST 2021] Registering account: https://acme.zerossl.com/v2/DV90
[Sun Aug 29 17:25:07 CEST 2021] url='https://acme.zerossl.com/v2/DV90/newAccount'
[Sun Aug 29 17:25:07 CEST 2021] payload='{"contact": ["mailto:2f4yor@gmail.com"], "termsOfServiceAgreed": true,"externalAccountBinding":{"protected":"eyJhbGciOiJIUzI1NiIsImtpZCI6InROLUJrZXF3N21Gd01RSEpDdllDTGciLCJ1cmwiOiJodHRwczovL2FjbWUuemVyb3NzbC5jb20vdjIvRFY5MC9uZXdBY2NvdW50In0", "payload":"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", "signature":"c64cKbtCMypPksxMTUYk7FNAPrYpHBLR-fpzoBZdiGo"}}'
[Sun Aug 29 17:25:07 CEST 2021] Use cached jwk for file: /volume1/.acme.sh/ca/acme.zerossl.com/v2/DV90/account.key
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:25:07 CEST 2021] Get nonce with HEAD. ACME_NEW_NONCE='https://acme.zerossl.com/v2/DV90/newNonce'
[Sun Aug 29 17:25:07 CEST 2021] Retrying post
[Sun Aug 29 17:25:07 CEST 2021] HEAD
[Sun Aug 29 17:25:07 CEST 2021] _post_url='https://acme.zerossl.com/v2/DV90/newNonce'
[Sun Aug 29 17:25:07 CEST 2021] body
[Sun Aug 29 17:25:07 CEST 2021] _postContentType='application/jose+json'
[Sun Aug 29 17:25:07 CEST 2021] _CURL='curl --silent --dump-header /volume1/.acme.sh/http.header  -L  --trace-ascii /tmp/acme.shwefADf24sf.1630250707.tmp  -g  -I  '
[Sun Aug 29 17:25:07 CEST 2021] _ret='0'
[Sun Aug 29 17:25:07 CEST 2021] _hcode='0'
[Sun Aug 29 17:25:07 CEST 2021] _headers='HTTP/1.1 200 OK
Server: nginx
Date: Sun, 29 Aug 2021 15:25:09 GMT
Content-Type: application/octet-stream
Connection: keep-alive
Replay-Nonce: M0_XCykm9Hil0djJ53hblWIpfNUkpDFHa3uPtUYJrno
Cache-Control: max-age=-1
Access-Control-Allow-Origin: *
Link: <https://acme.zerossl.com/v2/DV90>;rel="index"
Strict-Transport-Security: max-age=15552000
'
[Sun Aug 29 17:25:07 CEST 2021] _CACHED_NONCE='M0_XCykm9Hil0djJ53hblWIpfNUkpDFHa3uPtUYJrno'
[Sun Aug 29 17:25:07 CEST 2021] nonce='M0_XCykm9Hil0djJ53hblWIpfNUkpDFHa3uPtUYJrno'
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Sun Aug 29 17:25:07 CEST 2021] Retrying post
[Sun Aug 29 17:25:07 CEST 2021] POST
[Sun Aug 29 17:25:07 CEST 2021] _post_url='https://acme.zerossl.com/v2/DV90/newAccount'
[Sun Aug 29 17:25:07 CEST 2021] body='{"protected": "eyJub25jZSI6ICJNMF9YQ3lrbTlIaWwwZGpKNTNoYmxXSXBmTlVrcERGSGEzdVB0VVlKcm5vIiwgInVybCI6ICJodHRwczovL2FjbWUuemVyb3NzbC5jb20vdjIvRFY5MC9uZXdBY2NvdW50IiwgImFsZyI6ICJSUzI1NiIsICJqd2siOiB7ImUiOiAiQVFBQiIsICJrdHkiOiAiUlNBIiwgIm4iOiAiNkVNU0M0UUNEYjdiNlc3WGxnM1QtbzZOWWV5OWZ6bjFMYkRyWjdHN3lrSHJRMUlfeXdXSzFZVUtMTDExVm9leVpER2hWZ0ZocEowM3dYUWlVX2t0VXVBUjRHdnJ3S2lxTEx1bFM4ZHZDRXlaNVJCMzhLS0xmZTEtMlJYdkQ1VTR5RjlDcXBsZWY5Vmh3YTcyZ05KZWRMS2ZNSFI2bm5UUUFJLV9vRUYyazZDaVNWT24xQ1RNQzdNUEFmeERpbVVLOGFxbXNQSTlFMUFxRXRrVVJObVNTOGVXNDh6bC1tcE1FeDFlRmVCRFBZLUFKMVVQelgxVGdNY3RzQ1h0Smx2am4tOExjczd5bUtmUjNvMzNhZmdKdE1NVXFoZml6N0hSMjBSUjV5RDgwYkVCMkR3cXhKUnhpLTh4bm5PSE9EcTVmUDRKOXZqVmJaZGNjaHhfSzc0V2xRIn19", "payload": "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", "signature": "Ta0CSPx3XRAwabTiBB_ZCVsZ2OjKpHmRkVISCO-dfGXswqBhzqG7xRd01O9Emqi04IioG5qz3qzLd3b3CUScHUZl2FnEcKdVgVxPHbnQnx2dPAeRTOyfvhWZrBlijrBvQpqBxZv4EGCH4JoMExXtjBZt0pqapqUCUUIqtoVe5wgWFnimPonyICHqjjB7hQ4kBVZQyD_G_VYAm03nrFvWFCtqrvcg9pA7BzYSiWk_tJLLC06SnRCExVHBksxwjjeHcZmLYST0gNo7JTGIFYhV6qbOjvtF7Xp6_0Tv9vZGMKkFYOCpl6wouDFaPfFAqtoWfVby3eLT9h1YAu60_J64eA"}'
[Sun Aug 29 17:25:07 CEST 2021] _postContentType='application/jose+json'
[Sun Aug 29 17:25:07 CEST 2021] Http already initialized.
[Sun Aug 29 17:25:07 CEST 2021] _CURL='curl --silent --dump-header /volume1/.acme.sh/http.header  -L  --trace-ascii /tmp/acme.shwefADf24sf.1630250707.tmp  -g '
[Sun Aug 29 17:25:08 CEST 2021] _ret='0'
[Sun Aug 29 17:25:08 CEST 2021] _hcode='0'
[Sun Aug 29 17:25:08 CEST 2021] responseHeaders='HTTP/1.1 100 Continue

HTTP/1.1 400 Bad Request
Server: nginx
Date: Sun, 29 Aug 2021 15:25:09 GMT
Content-Type: application/problem+json
Content-Length: 125
Connection: keep-alive
Replay-Nonce: XS5lYS_RLu3FqW-REWRfjQnFKoZlFVNMFkTW0LPESMY
Cache-Control: max-age=0, no-cache, no-store
Access-Control-Allow-Origin: *
Link: <https://acme.zerossl.com/v2/DV90>;rel="index"
Cache-Control: max-age=-1
'
[Sun Aug 29 17:25:08 CEST 2021] code='400'
[Sun Aug 29 17:25:08 CEST 2021] original='{"type":"urn:ietf:params:acme:error:malformed","status":400,"detail":"[External Account Binding] Invalid MAC on JWS request"}'
[Sun Aug 29 17:25:08 CEST 2021] response='{"type":"urn:ietf:params:acme:error:malformed","status":400,"detail":"[External Account Binding] Invalid MAC on JWS request"}'
[Sun Aug 29 17:25:08 CEST 2021] Register account Error: {"type":"urn:ietf:params:acme:error:malformed","status":400,"detail":"[External Account Binding] Invalid MAC on JWS request"}
Neilpang commented 3 years ago

can you please try again with --server letsencrypt ?

CesMak commented 3 years ago

I tried it now like this:

acme.sh --issue -d sv.simact.de --server letsencrypt --webroot /var/lib/letsencrypt --certpath /usr/syno/etc/ssl/ssl.crt/server.crt --key path /usr/syno/etc/ssl/ssl.key/server.key --capath /usr/syno/etc/ssl/ssl.intercrt/server-ca.crt --reloadcmd '/usr/syno/sbin/synoservicecfg --reload httpd-sys'

and got this error:

WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Thr Sep  2 07:45:40 CEST 2021] Pending, The CA is processing your order, please just wait. (1/30)
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
WARNING: can't open config file: /usr/syno/ssl/openssl.cnf
[Thr Sep  2 07:45:43 CEST 2021] sv.simact.de:Verify error:Invalid response from http://sv.simact.de/.well-known/acme-challenge/2i36HlWVLt_HxMWSBJRepHcDeLGinpJPx6_ELrYCRGQ [79.231.121.83]: 
[Thr Sep  2 07:45:43 CEST 2021] Please check log file for more details: /volume1/.acme.sh/acme.sh.log

[Thr Sep 2 07:45:39 CEST 2021] Verifying: sv.simact.de [Thr Sep 2 07:45:39 CEST 2021] d='sv.simact.de' [Thr Sep 2 07:45:39 CEST 2021] keyauthorization='2i36HlWVLt_HxMWSBJRepHcDeLGinpJPx6_ELrYCRGQ.ZY0KsuM7R3w6cMijM1L8oeBMBj0PzqC9J1y2adFIVew' [Thr Sep 2 07:45:39 CEST 2021] uri='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:39 CEST 2021] _currentRoot='/var/lib/letsencrypt' [Thr Sep 2 07:45:39 CEST 2021] wellknown_path='/var/lib/letsencrypt/.well-known/acme-challenge' [Thr Sep 2 07:45:39 CEST 2021] writing token:2i36HlWVLt_HxMWSBJRepHcDeLGinpJPx6_ELrYCRGQ to /var/lib/letsencrypt/.well-known/acme-challenge/2i36HlWVLt_HxMWSBJRepHcDeLGinpJPx6_ELrYCRGQ [Thr Sep 2 07:45:39 CEST 2021] not changing owner/group of webroot [Thr Sep 2 07:45:39 CEST 2021] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:39 CEST 2021] payload='{}' [Thr Sep 2 07:45:39 CEST 2021] Retrying post [Thr Sep 2 07:45:39 CEST 2021] POST [Thr Sep 2 07:45:39 CEST 2021] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:39 CEST 2021] _CURL='curl --silent --dump-header /volume1/.acme.sh/http.header -L -g ' [Thr Sep 2 07:45:40 CEST 2021] _ret='0' [Thr Sep 2 07:45:40 CEST 2021] _hcode='0' [Thr Sep 2 07:45:40 CEST 2021] code='200' [Thr Sep 2 07:45:40 CEST 2021] trigger validation code: 200 [Thr Sep 2 07:45:40 CEST 2021] Pending, The CA is processing your order, please just wait. (1/30) [Thr Sep 2 07:45:40 CEST 2021] sleep 2 secs to verify again [Thr Sep 2 07:45:42 CEST 2021] checking [Thr Sep 2 07:45:42 CEST 2021] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:42 CEST 2021] payload [Thr Sep 2 07:45:42 CEST 2021] Retrying post [Thr Sep 2 07:45:42 CEST 2021] POST [Thr Sep 2 07:45:42 CEST 2021] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:42 CEST 2021] _CURL='curl --silent --dump-header /volume1/.acme.sh/http.header -L -g ' [Thr Sep 2 07:45:43 CEST 2021] _ret='0' [Thr Sep 2 07:45:43 CEST 2021] _hcode='0' [Thr Sep 2 07:45:43 CEST 2021] code='200' [Thr Sep 2 07:45:43 CEST 2021] sv.simact.de:Verify error:Invalid response from http://sv.simact.de/.well-known/acme-challenge/2i36HlWVLt_HxMWSBJRepHcDeLGinpJPx6_ELrYCRGQ [79.231.121.83]: [Thr Sep 2 07:45:43 CEST 2021] pid [Thr Sep 2 07:45:43 CEST 2021] No need to restore nginx, skip. [Thr Sep 2 07:45:43 CEST 2021] _clearupdns [Thr Sep 2 07:45:43 CEST 2021] dns_entries [Thr Sep 2 07:45:43 CEST 2021] skip dns. [Thr Sep 2 07:45:43 CEST 2021] _on_issue_err [Thr Sep 2 07:45:43 CEST 2021] Please check log file for more details: /volume1/.acme.sh/acme.sh.log [Thr Sep 2 07:45:43 CEST 2021] url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:43 CEST 2021] payload='{}' [Thr Sep 2 07:45:43 CEST 2021] Retrying post [Thr Sep 2 07:45:43 CEST 2021] POST [Thr Sep 2 07:45:43 CEST 2021] _post_url='https://acme-v02.api.letsencrypt.org/acme/chall-v3/27252274960/6eW2xQ' [Thr Sep 2 07:45:43 CEST 2021] _CURL='curl --silent --dump-header /volume1/.acme.sh/http.header -L -g ' [Thr Sep 2 07:45:44 CEST 2021] _ret='0' [Thr Sep 2 07:45:44 CEST 2021] _hcode='0' [Thr Sep 2 07:45:44 CEST 2021] code='400'

tresni commented 2 years ago

You may want to look at the instructions at https://github.com/acmesh-official/acme.sh/wiki/Synology-NAS-Guide . They are more up to date then the article you linked.